US10757079B2 - Method and system for controlling remote session on computer systems using a virtual channel - Google Patents
Method and system for controlling remote session on computer systems using a virtual channel Download PDFInfo
- Publication number
- US10757079B2 US10757079B2 US14/993,605 US201614993605A US10757079B2 US 10757079 B2 US10757079 B2 US 10757079B2 US 201614993605 A US201614993605 A US 201614993605A US 10757079 B2 US10757079 B2 US 10757079B2
- Authority
- US
- United States
- Prior art keywords
- state
- remote
- remote desktop
- meta
- data associated
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active, expires
Links
- 238000000034 method Methods 0.000 title claims abstract description 21
- 230000000903 blocking effect Effects 0.000 claims abstract description 23
- 238000012544 monitoring process Methods 0.000 claims abstract description 11
- 239000002131 composite material Substances 0.000 claims description 27
- 238000013515 script Methods 0.000 claims description 20
- 230000002155 anti-virotic effect Effects 0.000 claims description 9
- 230000008859 change Effects 0.000 claims description 6
- 238000004891 communication Methods 0.000 description 8
- 230000006870 function Effects 0.000 description 8
- 238000005516 engineering process Methods 0.000 description 7
- 230000008901 benefit Effects 0.000 description 5
- 238000004422 calculation algorithm Methods 0.000 description 4
- 230000008569 process Effects 0.000 description 4
- 230000006399 behavior Effects 0.000 description 3
- 230000000737 periodic effect Effects 0.000 description 3
- 238000013459 approach Methods 0.000 description 2
- 238000013507 mapping Methods 0.000 description 2
- 238000000060 site-specific infrared dichroism spectroscopy Methods 0.000 description 2
- 230000001960 triggered effect Effects 0.000 description 2
- 238000003339 best practice Methods 0.000 description 1
- 230000005540 biological transmission Effects 0.000 description 1
- 230000001010 compromised effect Effects 0.000 description 1
- 238000009434 installation Methods 0.000 description 1
- 230000007246 mechanism Effects 0.000 description 1
- 230000008520 organization Effects 0.000 description 1
- 230000002688 persistence Effects 0.000 description 1
- 238000012545 processing Methods 0.000 description 1
- 230000000717 retained effect Effects 0.000 description 1
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0272—Virtual private networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/102—Entity profiles
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L65/00—Network arrangements, protocols or services for supporting real-time applications in data packet communication
- H04L65/1066—Session management
- H04L65/1069—Session establishment or de-establishment
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/08—Protocols specially adapted for terminal emulation, e.g. Telnet
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/14—Session management
- H04L67/141—Setup of application sessions
Definitions
- Both Microsoft RDP and Citrix ICA offer Virtual Channels for some platforms allowing a developer to extend the remoting protocol with additional information.
- Microsoft RDP offer Virtual Channels for the Windows platform.
- Citrix ICA offer Virtual Channels for Windows, Linux and MAC OSX platforms.
- This sensitive Remote Application may display corporate financial information, customer confidential information, or any other sensitive information.
- the specific locations that employees can access this sensitive Remote Application may be limited to the company offices. They may also be permitted to access the sensitive Remote Application from the home office.
- the IT department may choose to grant access to the Remote Application if the Connecting Device is geographically located within a specific range of each of the offices geographical coordinates. Alternatively, the IT department may choose to grant access to the sensitive Remote Application if the Connecting Device is using the corporate Wi-Fi, which may include a check on the Wi-Fi SSID, the Wi-Fi BSSID, and the address of the primary DNS server.
- the interface contains one function call to write data to the virtual channel, and another to read data from the virtual channel.
- the Virtual Channel Plug-in 208 contains executable code which can be used to read the state of the Connected Device 201 , including the physical device state 202 , the operating system state 204 and the user session state 206 and send that state over the Virtual Channel 211 , 214 to software running on the Remote Desktop or Application Server 215 .
- the transmission of the physical device state can be triggered by changes of the state or by regular intervals or if requested by the Remote Desktop or Application Server 215 .
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- General Business, Economics & Management (AREA)
- Multimedia (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
- Device—A laptop, physical desktop, thin client, tablet, mobile phone used by a user such as an employee, contractor or supplier to connect to a remote desktop or remote application.
- Thin Client—A corporate owned physical desktop dedicated to accessing a remote desktops or remote applications.
- Connected Device—Same as device, although with emphasis on the fact that the device is connected to the remote desktop or application.
- Connecting Device—Same as device, although the device is actively establishing a connection with the remote desktop or application.
- Device State—The state of the device, including the state of the physical device, the operating system which runs on it, and the logged in user session. The state can be defined by one or more of the following parameters: Anti-Virus enabled, Firewall enabled, Wi-Fi connectivity/security, Installed Applications, Running Applications, User Security, Group membership, User Privileges, Geographical Location, Geographical Elevation, and others.
- Remote Desktop—A Windows (or other) desktop, running on a server within a corporate data center or on the internet (cloud), allowing user to launch one or more applications which run within a remote user session and is delivered via a remoting protocol to a device.
- Remote Application—A single Windows (or other) application, offering a user interface that runs in a remote session and is delivered via a remoting protocol to a device. In comparison to the remote desktop only the relevant application data is transmitted and not the complete desktop, so that the application although running remote is integrated into the local desktop.
- Access Token—An access token is an Operating System concept that describes the security context of an application, and determines the access that the operating system grants to the process. The access token consists of a set of security groups, privileges and claims which the operating system uses to control access to securable objects, such as files and folders and the Windows Registry. This Access Token is also used by the invention to control the access.
- Remote Desktop or Application Server—A server, either physical or virtual, that is configured to allow remote access to either the desktop or one or more applications.
- Remoting Protocol—A network protocol used to capture graphics, audio, clipboard or storage from a remote session and deliver it to a device where it can be reconstructed to give the illusion that the remote desktop or application is running on the local device.
- Remoting Protocol Service—An application launched by the Operating System and that implements the server side of the Remoting Protocol.
- Gateway Server—A server that facilitates the connection between the Connecting Device and the Remote Desktop or Application Server. The gateway server may choose to allow or deny the connection based upon the configuration. It may also connect the network of the Connecting Device to the Remote Desktop or Application Server using technologies such as a Virtual Private Network (VPN).
- Virtual Channel—Provided by the remoting protocol, the virtual channel allows third parties (or the remoting protocol vendor) to implement communicate between software running on the remoting client and software running on the remote desktop server.
- Remoting Client—An application that runs on a device, implementing the client end of the remoting protocol and presents to the user either a remote desktop or remote application.
- User Session—An abstract concept of an operating system to represent an authenticated and logged in user, their desktop, and the applications that they are running either on virtual desktop or virtual machine providing a virtual desktop.
- Remote User Session—A user session running on a remote computer, and is delivered over the internet or intranet by communications using a remoting protocol. In contrast to that is the local session when the user is logged into the user session with the keyboard, mouse and monitor physically connected to the remote desktop or application server.
- Windows Registry—A hierarchical database of settings for the Microsoft Windows Operating System and Microsoft Windows applications.
- Environment Variables—A set of name/value pairs that can affect the way applications run. Environment Variables can be global, or specific to a user or user session.
- Administrative Scripts—Written in one of many high level programming languages, Administrative Scripts are written by IT departments to manipulate the behavior of the Operating System to increase the user experience, or to enforce corporate policy.
- Third Party Tools—Much like the Administrative Scripts, a number of third party tools exist written by the OS vendor or independent software vendors, allowing IT departments to manipulate the behavior of the Operating System to increase the user experience, or to enforce corporate policy.
- Operating System—Software that runs on a computer to manage computer hardware and software, and provide a common set of services to applications.
- Internet—A global system of interconnected networks connecting billions of devices around the world.
- Intranet—A private network accessible only to the employees of an organization.
- Jailbroken—A jailbroken device is one that has been deliberately compromised to remove software restrictions enforced by the manufacturer, allowing applications to be run that are not available to a non-jailbroken device.
- Virtual Channel Plugin—Some executable code that is loaded into the Remoting Client to extend the functionality of the Remoting Client and communicate with additional executable code running on the Remote Desktop or Application Server. The Virtual Channel Plugin can read the state of the Connected Device and communicate this state to the Device State Service over the Virtual Channel.
- Device State Service—An application that runs on the Remote Desktop or Application Server and is loaded when the Operating System starts. The Device State Service identifies user sessions, monitors for the creation of new sessions, reads the state of the connecting device from the Virtual Channel Plugin over the Virtual Channel, persists the device state within the Windows Registry and Environment Variables, triggers Application Scripts and launches a Desktop Blocking Application to hide the Remote Desktop or Remote Application from the logged in user.
- Desktop Blocking Application—An application that is launched by the Device State Service to hide the Remote Desktop or Remote Application from the logged in user, and to present a message to the user informing then why they are unable to access their Remote Desktop or Remote Application. By blocking access to the Remote Desktop or Remote Application rather than stalling it, the login process can continue ensuring that the time to login is not unnecessarily hindered.
- network information such as IP, MAC, Gateway addresses, Wi-Fi Access Point. Blacklists or White lists can be used by the Device State Service to decide about the access.
- network security information such as Wi-Fi Encryption and Authentication Protocols. If no or only limited security information are used or are available the access can be denied.
- network performance information, such as Bandwidth and Latency. If the parameters are below a certain threshold the access can be denied.
- metadata about the running Operating System, such as the name, version, service pack level. If the operation system and the service pack level do not provide a sufficient security the access is blocked or limited.
- installed applications. If certain applications are installed that allow capturing of information, an access is blocked
- license state of installed applications or the operating system. Also the license state can be used to determine the access, for example only validly licensed products are allowed.
- running applications on the device. Illegal software can be determined and an access be blocked.
- geographical location or elevation; also the location can be used to determine an illegal access. For example certain geographical regions can be excluded, as well as places where information are not transmitted securely.
- information if the device is jailbroken or hacked in some way that compromises the security of the device. This is used to make sure the transferred data is safe.
- information about operating system updates, which have been applied to the device;
- is an Anti-Virus installed and up to date;
- security information of the logged in user, including their privileges, security group membership, domain membership.
- the device state is made available within the Windows Registry;
- the device state is made available within Environment Variables;
- the Connected Device State is made available through an Application Programming Interface (API);
- the Connected Device State is made available through an Application.
- the device state of the device is unavailable;
- insufficient to access rights for the Remote Desktop or Remote Application;
- the device is a connecting device;
- the device is not connected to a session;
- the device state is not accepted by device state service.
Claims (20)
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US14/993,605 US10757079B2 (en) | 2016-01-12 | 2016-01-12 | Method and system for controlling remote session on computer systems using a virtual channel |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US14/993,605 US10757079B2 (en) | 2016-01-12 | 2016-01-12 | Method and system for controlling remote session on computer systems using a virtual channel |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| US20170201491A1 US20170201491A1 (en) | 2017-07-13 |
| US10757079B2 true US10757079B2 (en) | 2020-08-25 |
Family
ID=59276019
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| US14/993,605 Active 2037-10-28 US10757079B2 (en) | 2016-01-12 | 2016-01-12 | Method and system for controlling remote session on computer systems using a virtual channel |
Country Status (1)
| Country | Link |
|---|---|
| US (1) | US10757079B2 (en) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20240214434A1 (en) * | 2021-06-28 | 2024-06-27 | Hewlett-Packard Development Company, L.P. | Remote desktop connection communications |
Families Citing this family (14)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US11290425B2 (en) * | 2016-02-01 | 2022-03-29 | Airwatch Llc | Configuring network security based on device management characteristics |
| US20190207946A1 (en) * | 2016-12-20 | 2019-07-04 | Google Inc. | Conditional provision of access by interactive assistant modules |
| US10860342B2 (en) * | 2017-01-30 | 2020-12-08 | Citrix Systems, Inc. | Computer system providing cloud-based session prelaunch features and related methods |
| US11436417B2 (en) | 2017-05-15 | 2022-09-06 | Google Llc | Providing access to user-controlled resources by automated assistants |
| US10127227B1 (en) | 2017-05-15 | 2018-11-13 | Google Llc | Providing access to user-controlled resources by automated assistants |
| GB2565282B (en) * | 2017-08-02 | 2021-12-22 | Vnc Automotive Ltd | Remote control of a computing device |
| WO2020017767A1 (en) * | 2018-07-16 | 2020-01-23 | Samsung Electronics Co., Ltd. | Method and device for controlling access of application |
| EP4418146A1 (en) | 2018-08-07 | 2024-08-21 | Google Llc | Assembling and evaluating automated assistant responses for privacy concerns |
| CN111107117A (en) * | 2018-10-26 | 2020-05-05 | 中兴通讯股份有限公司 | Virtual machine and remote control method, terminal, host server and storage medium thereof |
| US11057464B1 (en) * | 2020-06-04 | 2021-07-06 | Citrix Systems, Inc. | Synchronization of data between local and remote computing environment buffers |
| CN113176957B (en) * | 2021-04-29 | 2024-05-03 | 上海云扩信息科技有限公司 | Remote application automation system based on RPC |
| US12236398B2 (en) * | 2021-09-15 | 2025-02-25 | Six. One, LLC | Systems and methods for an enterprise computing platform |
| CN114157466A (en) * | 2021-11-25 | 2022-03-08 | 成都普沛科技有限公司 | System and method for realizing safe cross-network access under network partition |
| US20240333723A1 (en) * | 2023-03-31 | 2024-10-03 | Connectwise, Llc | Systems and Methods for Anonymous Administrative Login |
Citations (27)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20070050471A1 (en) * | 2005-08-31 | 2007-03-01 | Microsoft Corporation | Portable Remoting Component With A Scaleable Feature Set |
| US20080235361A1 (en) * | 2007-03-21 | 2008-09-25 | David Crosbie | Management layer method and apparatus for dynamic assignment of users to computer resources |
| US20100064215A1 (en) * | 2008-09-10 | 2010-03-11 | Leon Portman | System and method for screen recording |
| US20110219122A1 (en) * | 2010-03-08 | 2011-09-08 | Microsoft Corpoation | Remote content classification and transmission using multiple transport channels |
| US20110243433A1 (en) * | 2010-03-31 | 2011-10-06 | Microsoft Corporation | Classification and encoder selection based on content |
| US20110276699A1 (en) * | 2010-05-09 | 2011-11-10 | Pedersen Bradley J | Systems and methods for allocation of classes of service to network connections corresponding to virtual channels |
| US20120136917A1 (en) * | 2009-08-21 | 2012-05-31 | Avaya Inc. | Seamless movement between phone and pc with regard to applications, display, information transfer or swapping active device |
| US20120230345A1 (en) * | 2011-03-11 | 2012-09-13 | Michael Ovsiannikov | Systems and Methods of QoS for Single Stream ICA |
| US20120303762A1 (en) * | 2011-05-23 | 2012-11-29 | Devon It, Inc. | Zero Configuration Set-Up for Thin Client Computers |
| US20120331032A1 (en) * | 2011-06-22 | 2012-12-27 | Microsoft Corporation | Remote Presentation Session Connectionless Oriented Channel Broker |
| US20130054787A1 (en) * | 2011-08-30 | 2013-02-28 | Qatar Foundation | System and Method for Latency Monitoring |
| US20140047560A1 (en) * | 2012-04-27 | 2014-02-13 | Intralinks, Inc. | Computerized method and system for managing secure mobile device content viewing in a networked secure collaborative exchange environment |
| US20140289639A1 (en) * | 2011-06-28 | 2014-09-25 | Irwan Halim | Display of operating status information of a client in a remote desktop session |
| US20140295821A1 (en) * | 2013-03-29 | 2014-10-02 | Citrix Systems, Inc. | Providing mobile device management functionalities |
| US8972485B1 (en) * | 2011-03-22 | 2015-03-03 | Cisco Technology, Inc. | Distributing execution of applications between a local client system and a remote virtual environment |
| US20150271027A1 (en) * | 2014-03-20 | 2015-09-24 | Richard Goldberg | Dynamic Session Transformation |
| US20150365439A1 (en) * | 2013-01-31 | 2015-12-17 | Hewlett-Packard Development Company, L.P. | Synchronization of security-related data |
| US20160234343A1 (en) * | 2015-02-11 | 2016-08-11 | Dell Products L.P. | Client side redirection |
| US20160286003A1 (en) * | 2015-03-25 | 2016-09-29 | Amazon Technologies, Inc. | Using multiple protocols in a virtual desktop infrastructure |
| US20160371104A1 (en) * | 2015-06-17 | 2016-12-22 | Vmware, Inc. | Provisioning virtual desktops with stub virtual disks |
| US20160380860A1 (en) * | 2015-06-29 | 2016-12-29 | Citrix Systems, Inc. | Systems and methods for measuring round trip time in network devices between the device and an endpoint |
| US9716740B2 (en) * | 2013-06-14 | 2017-07-25 | Dell Products L.P. | Web-based transcoding to clients for client-server communication |
| US9729551B1 (en) * | 2013-11-26 | 2017-08-08 | Mobile Iron, Inc. | Virtual mailbox |
| US20180062936A1 (en) * | 2015-05-15 | 2018-03-01 | Hewlett-Packard Development Company, L.P. | Display of Server Capabilities |
| US10074227B1 (en) * | 2017-08-09 | 2018-09-11 | Amazon Technologies, Inc. | Secured location confirmation |
| US10079875B2 (en) * | 2014-01-30 | 2018-09-18 | Vmware, Inc. | Remote contextual access to operating system desktops |
| US20190132381A1 (en) * | 2012-03-02 | 2019-05-02 | Citrix Systems, Inc. | Reverse Seamless Integration Between Local and Remote Computing Environments |
-
2016
- 2016-01-12 US US14/993,605 patent/US10757079B2/en active Active
Patent Citations (28)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20070050471A1 (en) * | 2005-08-31 | 2007-03-01 | Microsoft Corporation | Portable Remoting Component With A Scaleable Feature Set |
| US20080235361A1 (en) * | 2007-03-21 | 2008-09-25 | David Crosbie | Management layer method and apparatus for dynamic assignment of users to computer resources |
| US20100064215A1 (en) * | 2008-09-10 | 2010-03-11 | Leon Portman | System and method for screen recording |
| US20120136917A1 (en) * | 2009-08-21 | 2012-05-31 | Avaya Inc. | Seamless movement between phone and pc with regard to applications, display, information transfer or swapping active device |
| US20110219122A1 (en) * | 2010-03-08 | 2011-09-08 | Microsoft Corpoation | Remote content classification and transmission using multiple transport channels |
| US20110243433A1 (en) * | 2010-03-31 | 2011-10-06 | Microsoft Corporation | Classification and encoder selection based on content |
| US20110276699A1 (en) * | 2010-05-09 | 2011-11-10 | Pedersen Bradley J | Systems and methods for allocation of classes of service to network connections corresponding to virtual channels |
| US20120230345A1 (en) * | 2011-03-11 | 2012-09-13 | Michael Ovsiannikov | Systems and Methods of QoS for Single Stream ICA |
| US8972485B1 (en) * | 2011-03-22 | 2015-03-03 | Cisco Technology, Inc. | Distributing execution of applications between a local client system and a remote virtual environment |
| US20120303762A1 (en) * | 2011-05-23 | 2012-11-29 | Devon It, Inc. | Zero Configuration Set-Up for Thin Client Computers |
| US20120331032A1 (en) * | 2011-06-22 | 2012-12-27 | Microsoft Corporation | Remote Presentation Session Connectionless Oriented Channel Broker |
| US20140289639A1 (en) * | 2011-06-28 | 2014-09-25 | Irwan Halim | Display of operating status information of a client in a remote desktop session |
| US20130054787A1 (en) * | 2011-08-30 | 2013-02-28 | Qatar Foundation | System and Method for Latency Monitoring |
| US20190132381A1 (en) * | 2012-03-02 | 2019-05-02 | Citrix Systems, Inc. | Reverse Seamless Integration Between Local and Remote Computing Environments |
| US20140047560A1 (en) * | 2012-04-27 | 2014-02-13 | Intralinks, Inc. | Computerized method and system for managing secure mobile device content viewing in a networked secure collaborative exchange environment |
| US20150365439A1 (en) * | 2013-01-31 | 2015-12-17 | Hewlett-Packard Development Company, L.P. | Synchronization of security-related data |
| US20140295821A1 (en) * | 2013-03-29 | 2014-10-02 | Citrix Systems, Inc. | Providing mobile device management functionalities |
| US9716740B2 (en) * | 2013-06-14 | 2017-07-25 | Dell Products L.P. | Web-based transcoding to clients for client-server communication |
| US9729551B1 (en) * | 2013-11-26 | 2017-08-08 | Mobile Iron, Inc. | Virtual mailbox |
| US10079875B2 (en) * | 2014-01-30 | 2018-09-18 | Vmware, Inc. | Remote contextual access to operating system desktops |
| US20150271027A1 (en) * | 2014-03-20 | 2015-09-24 | Richard Goldberg | Dynamic Session Transformation |
| US20160234343A1 (en) * | 2015-02-11 | 2016-08-11 | Dell Products L.P. | Client side redirection |
| US20160286003A1 (en) * | 2015-03-25 | 2016-09-29 | Amazon Technologies, Inc. | Using multiple protocols in a virtual desktop infrastructure |
| US20180062936A1 (en) * | 2015-05-15 | 2018-03-01 | Hewlett-Packard Development Company, L.P. | Display of Server Capabilities |
| US20170116009A1 (en) * | 2015-06-17 | 2017-04-27 | Vmware, Inc. | Provisioning virtual desktops with stub virtual disks |
| US20160371104A1 (en) * | 2015-06-17 | 2016-12-22 | Vmware, Inc. | Provisioning virtual desktops with stub virtual disks |
| US20160380860A1 (en) * | 2015-06-29 | 2016-12-29 | Citrix Systems, Inc. | Systems and methods for measuring round trip time in network devices between the device and an endpoint |
| US10074227B1 (en) * | 2017-08-09 | 2018-09-11 | Amazon Technologies, Inc. | Secured location confirmation |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20240214434A1 (en) * | 2021-06-28 | 2024-06-27 | Hewlett-Packard Development Company, L.P. | Remote desktop connection communications |
Also Published As
| Publication number | Publication date |
|---|---|
| US20170201491A1 (en) | 2017-07-13 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US10757079B2 (en) | Method and system for controlling remote session on computer systems using a virtual channel | |
| US10075532B2 (en) | Method and system for controlling remote session on computer systems | |
| US12225050B2 (en) | Distribution and management of services in virtual environments | |
| US11356431B2 (en) | Operating system integrated domain management | |
| US11558484B2 (en) | Systems and methods for secure peer-to-peer caching | |
| US20220070206A1 (en) | Secure device selection based on sensitive content detection | |
| US11893123B2 (en) | Systems and methods for screenshot mediation based on policy | |
| CN108847990B (en) | A method, device and medium for providing mobile device management function | |
| US9065771B2 (en) | Managing application execution and data access on a device | |
| EP2939390B1 (en) | Processing device and method of operation thereof | |
| US10331599B2 (en) | Employing session level restrictions to limit access to a redirected interface of a composite device | |
| US20220004623A1 (en) | Managed isolated workspace on a user device | |
| US11323528B2 (en) | Systems and methods for push notification service for SAAS applications | |
| US11411904B2 (en) | Systems and methods for filtering notifications for end points associated with a user | |
| WO2021126329A1 (en) | Context-aware obfuscation and unobfuscation of sensitive content | |
| US20150358357A1 (en) | Processing device and method of operation thereof | |
| WO2020140264A1 (en) | Application publishing in a virtualized environment | |
| EP2840755A1 (en) | Processing device and method of operation thereof | |
| EP2840754A1 (en) | Processing device and method of operation thereof |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: FINAL REJECTION MAILED |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: DOCKETED NEW CASE - READY FOR EXAMINATION |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: NON FINAL ACTION MAILED |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: RESPONSE TO NON-FINAL OFFICE ACTION ENTERED AND FORWARDED TO EXAMINER |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: FINAL REJECTION MAILED |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: NOTICE OF ALLOWANCE MAILED -- APPLICATION RECEIVED IN OFFICE OF PUBLICATIONS |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: PUBLICATIONS -- ISSUE FEE PAYMENT VERIFIED |
|
| STCF | Information on status: patent grant |
Free format text: PATENTED CASE |
|
| MAFP | Maintenance fee payment |
Free format text: PAYMENT OF MAINTENANCE FEE, 4TH YR, SMALL ENTITY (ORIGINAL EVENT CODE: M2551); ENTITY STATUS OF PATENT OWNER: SMALL ENTITY Year of fee payment: 4 |
|
| AS | Assignment |
Owner name: DEVICETRUST GMBH, GERMANY Free format text: ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:SCHMIDT, JENS;GOECKEL, SASCHA;ALLSOP, JONATHAN;REEL/FRAME:068689/0223 Effective date: 20240924 |
|
| FEPP | Fee payment procedure |
Free format text: ENTITY STATUS SET TO UNDISCOUNTED (ORIGINAL EVENT CODE: BIG.); ENTITY STATUS OF PATENT OWNER: LARGE ENTITY |